Vulnerability CVE-2007-3927


Published: 2007-07-20   Modified: 2012-02-12

Description:
Multiple buffer overflows in Ipswitch IMail Server 2006 before 2006.21 (1) allow remote attackers to execute arbitrary code via unspecified vectors in Imailsec and (2) allow attackers to have an unknown impact via an unspecified vector related to "subscribe."

CVSS2 => (AV:N/AC:L/Au:N/C:C/I:C/A:C)

CVSS Base Score
Impact Subscore
Exploitability Subscore
10/10
10/10
10/10
Exploit range
Attack complexity
Authentication
Remote
Low
No required
Confidentiality impact
Integrity impact
Availability impact
Complete
Complete
Complete
Affected software
Ipswitch -> Imail server 
Ipswitch -> Ipswitch collaboration suite 

 References:
http://www.securityfocus.com/bid/24962
http://docs.ipswitch.com/IMail%202006.21/ReleaseNotes/IMail_RelNotes.htm#NewRelease
http://www.vupen.com/english/advisories/2007/2574
http://osvdb.org/45819
http://osvdb.org/45818
http://xforce.iss.net/xforce/xfdb/35505
http://xforce.iss.net/xforce/xfdb/35504
http://www.securitytracker.com/id?1018421
http://secunia.com/advisories/26123

Copyright 2024, cxsecurity.com

 

Back to Top